Логотип exploitDog
bind:CVE-2022-22112
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-22112

Количество 2

Количество 2

nvd логотип

CVE-2022-22112

около 4 лет назад

In DayByDay CRM, versions 1.1 through 2.2.1 (latest) suffer from an application-wide Client-Side Template Injection (CSTI). A low privileged attacker can input template injection payloads in the application at various locations to execute JavaScript on the client browser.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-3xgw-mp56-cmcq

около 4 лет назад

In DayByDay CRM, versions 1.1 through 2.2.1 (latest) suffer from an application-wide Client-Side Template Injection (CSTI). A low privileged attacker can input template injection payloads in the application at various locations to execute JavaScript on the client browser.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-22112

In DayByDay CRM, versions 1.1 through 2.2.1 (latest) suffer from an application-wide Client-Side Template Injection (CSTI). A low privileged attacker can input template injection payloads in the application at various locations to execute JavaScript on the client browser.

CVSS3: 5.4
0%
Низкий
около 4 лет назад
github логотип
GHSA-3xgw-mp56-cmcq

In DayByDay CRM, versions 1.1 through 2.2.1 (latest) suffer from an application-wide Client-Side Template Injection (CSTI). A low privileged attacker can input template injection payloads in the application at various locations to execute JavaScript on the client browser.

0%
Низкий
около 4 лет назад

Уязвимостей на страницу